Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-5661
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-5661

Description:
The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/41558

ST
  1019735

SAID
  Secunia Advisory: SA29549

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=649

CONFIRM
  http://knowledge.macrovision.com/selfservice/microsites/search.do?cmd=displayKC&externalId=Q113640

BID
  28533


Return to the previous page.